Rocky Mountain Health Maintenance Organization
Disclosed Sep 12, 20197 years ago1,835 affectedConfirmed
Rocky Mountain Health Maintenance Organization, Inc., dba Rocky Mountain Health Plans, the covered entity (CE), reported that, due to a processing error, its business associate (BA), eviCore Healthcare, may have sent documents containing the protected health information (PHI) of 1,835 individuals to the wrong recipients. The PHI involved included names, dates of birth, clinical information, and treatment information. The CE notified HHS, affected individuals, and the media. In its mitigation efforts, the BA implemented technical safeguards to better protect sensitive data.
What is known
| People affected | 1,835 (as reported to HHS) |
|---|---|
| Disclosed | Sep 12, 2019 |
| Attack | Insider |
| Data exposed | Names, Health |
| Sector | Insurance · US |
| Status | Confirmed |
Sources
| Source | |
|---|---|
| HHS OCR breach report (archive, resolved): Rocky Mountain Health Maintenance Organization (Health Plan, CO)ocrportal.hhs.gov · Official notice | Official notice |
Notices filed
| Where | Filed | People |
|---|---|---|
| HHS archivetotal | Sep 12, 2019 | 1,835 |
Other breaches at Rocky Mountain Health Maintenance Organization
| Breach | Affected | ||||
|---|---|---|---|---|---|
| Disclosed Mar 17, 2017Mar 17, 20179 years agoInsider | Mar 17, 20179 years ago | Insider | Insurance | Confirmed | 1,320 |
History of this record
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (HHS archive), confirmed by HHS OCR. Record counts are as reported. Not legal advice.
Everything about Rocky Mountain Health Maintenance Organization